General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! SSL decryption enabled and Packet Descriptor

Did SSL decryption on PA 5220 running 8.1.9.

 

When i run below command 

 

show running resource-monitor hour last 3

Resource monitoring sampling data (per hour):

CPU load (%) during last 3 hours:
core 0 1 2 3 4 5 6 7
avg max avg max avg max avg max avg max

...

MP18 by Cyber Elite
  • 3763 Views
  • 4 replies
  • 0 Likes

*Urgent* TCP out of order.

Hi team,

 

My customer is facing the TCP out of order in pcaps while accessing SMB application. 

He implemented the Zone protection in LAN zone which has Asymmetric path set as global, I changed it to bypass...

 

Will this resolve the issue...?? why TCP o

...

Regarding URL Filtering

Hello Everyone,

 

I am little confused in creating URL filtering policy rule. Does allowing certain url category in the policy block everything else?

 

For example in a policy from inside to outside i created and allowed url category online storage and b

...

PCNSE now Cover PANOS 10

To those who haven't seen it yet, the study guide is now updated August 2020 to reflect the exam on 10.0 which was confirmed updated by the Palo Alto Networks Education Services LinkedIn page. There is a link to this page from the official Palo Alto
...

nedriano by L1 Bithead
  • 2186 Views
  • 0 replies
  • 0 Likes

Reliability of "name-of-threatid" in threat log searches

When using the "name-of-threatid" to search threat logs I am getting very inconsistent results.

 

Some signatures are returning properly, while others return blank results - even when I build the search syntax dynamically by clicking on the alerts in t

...

apackard by L4 Transporter
  • 2962 Views
  • 1 replies
  • 0 Likes

wildfire submission issue

There are certain files which were sent to wildfire for multiple times and every time we have received verdict as malicious.
The same file (i have verified the file hash available in wildfire cloud) is submitting multiple times even after the verdict

...

11111.png

Resolved! PAN-OS BGP

Hi,

 

I'm familiar with BGP in general, but not so much on the Palo Alto platform.

 

I'm peering with a service provider, but I don't see a default route being advertised toward us. The default route in the routing table is learned from an OSPF neighbour

...

Luke_R by L2 Linker
  • 2361 Views
  • 2 replies
  • 0 Likes

Invalid portal error in GlobalProtect

have the GP 4.1 client installed on a computer with Windows 10 Enterprise v2004 64bit, which when wanting to connect to the company portal, marks me as invalid portal, everything related that I have found on the network has already been reviewed but

...

Need some guidance on the VM series implementation

Hi there,

I have inherited the current network and need some help in replacing the firewall for like to like. We have a MPLS network connecting all our offices and an external firewall managed by the ISP. Traffic from all sites go out via the external

...

Network.png
nitz-sw by L0 Member
  • 2686 Views
  • 4 replies
  • 0 Likes

ISP Failover With Controlled Failback

We have a pair of PA-3020 setup with HA and ISP Failover. PAN OS 9.1.3-h. I am not using PBF. I want to connect our VOIP phone switch to the firewall. Our VOIP phones connect to a cloud based PBX. I setup a new VR for VOIP with ports for ISP1, ISP2,

...

Authentication Policy Use Case

Here use case and wondering if this is feasible.

 

1. User Bob is already authenticated and connected(tunnel VPN) to firewall A with GlobalProtect with his account "Bob".

2. User Bob need to access critical ressource behind the same firewall A with, how

...

  • 23659 Posts
  • 104 Subscriptions
Top Solution Authors
Top Liked Authors
Labels